PoC Index

CVE-2012-0439

HIGH 9.3EPSS 39.2%

An ActiveX control in gwcls1.dll in the client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code via (1) a pointer argument to the SetEngine method or (2) an XPItem pointer argument to an unspecified method.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
39.18% chance of exploitation in the next 30 days, 98th percentile
Published
2013-02-24
Updated
2024-09-17

Metasploit modules (1)

ExploitDB entries (1)

References

Related